From 202f2ee62fbb305bd733acf2d4bddcfa376ee3fa Mon Sep 17 00:00:00 2001 From: Sunpoet Po-Chuan Hsieh Date: Thu, 3 Oct 2019 19:28:42 +0000 Subject: Document unbound vulnerability --- security/vuxml/vuln.xml | 29 +++++++++++++++++++++++++++++ 1 file changed, 29 insertions(+) diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index b4b73d2ca202..aef73f919691 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,35 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + unbound -- parsing vulnerability + + + unbound + 1.7.11.9.4 + + + + +

Unbound Security Advisories:

+
+

Due to an error in parsing NOTIFY queries, it is possible for Unbound + to continue processing malformed queries and may ultimately result in a + pointer dereference in uninitialized memory. This results in a crash of + the Unbound daemon.

+
+ +
+ + https://www.nlnetlabs.nl/projects/unbound/security-advisories/#vulnerability-in-parsing-notify-queries + CVE-2019-16866 + + + 2019-10-03 + 2019-10-03 + +
+ ruby -- multiple vulnerabilities -- cgit v1.2.3